Sample viewer

vx.netlux.org/Virus.DOS.EnolaGay.1183.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:22.08197847Z 174 PC: 1ac2c | UNKNOWN!
2018-12-17T23:02:22.083340609Z 48 PC: 1ac38 | Get DOS version
2018-12-17T23:02:22.08532288Z 82 PC: 9f5b5 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.086872405Z 76 PC: 1aa6b | Terminate with return code (Return code = '0')
2018-12-17T23:02:22.090939904Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:02:22.092353237Z 72 PC: 12174 | Allocate memory
2018-12-17T23:02:22.094275881Z 72 PC: 1218d | Allocate memory
2018-12-17T23:02:22.0979214Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:02:22.099690542Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:02:22.101442197Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:02:22.103543808Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.104686003Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.10633169Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.108300221Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.110148287Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.111869965Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.114007253Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.116657625Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.118154868Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.120042017Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.122313331Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.12426446Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.126511711Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.128409106Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.129824881Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.131663773Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.133183033Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.134638814Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.136410177Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.137607787Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.139471735Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.141958894Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.143069408Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.144995078Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.146664127Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.147565545Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.149736498Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.151982002Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.153001067Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.154848591Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.156519647Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.157398025Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.15919277Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.16089789Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.16184357Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.164037816Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.16571085Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.166618396Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.168847884Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.170866562Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.172154593Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.173975632Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.176546042Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:22.177506902Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:22.178456969Z 62 PC: 122ab | Close file
2018-12-17T23:02:22.18135547Z 99 PC: 99e27 | Get DBCS lead byte table pointer
2018-12-17T23:02:22.183069052Z 56 PC: 94649 | Get or set country info
2018-12-17T23:02:22.185188558Z 64 PC: 9a098 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:02:22.189338516Z 25 PC: 946b2 | Get default drive
2018-12-17T23:02:22.190607546Z 71 PC: 9692d | Get current directory
2018-12-17T23:02:22.193265584Z 64 PC: 9a098 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:02:22.196414336Z 2 PC: 96902 | Character output (Char = '3e')
2018-12-17T23:02:22.197999598Z 93 PC: 94770 | File sharing functions
2018-12-17T23:02:22.199241845Z 93 PC: 94777 | File sharing functions
2018-12-17T23:02:22.201151433Z 10 PC: 94789 | Buffered keyboard input
2018-12-17T23:02:37.060722839Z 0 PC: 0 | Program terminate
2018-12-17T23:02:38.416632844Z 0 PC: 0 | Program terminate
2018-12-17T23:02:38.518888062Z 64 PC: 9a098 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:02:38.526357518Z 41 PC: 947fe | Parse filename
2018-12-17T23:02:38.529037102Z 41 PC: 9487f | Parse filename
2018-12-17T23:02:38.532198278Z 41 PC: 9489c | Parse filename
2018-12-17T23:02:38.53460818Z 26 PC: 97d47 | Set disk transfer address
2018-12-17T23:02:38.537291911Z 71 PC: 97f43 | Get current directory
2018-12-17T23:02:38.547756742Z 78 PC: 97f4e | Find first file
2018-12-17T23:02:38.558829457Z 71 PC: 97dbc | Get current directory
2018-12-17T23:02:38.566282859Z 73 PC: 97459 | Release memory
2018-12-17T23:02:38.568260089Z 61 PC: 9f615 | Open file (Filename = 'A:\PRINT.COM')
2018-12-17T23:02:38.575732571Z 66 PC: 9f631 | Move file pointer
2018-12-17T23:02:38.579205485Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.580744979Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.582592238Z 62 PC: 9f63f | Close file
2018-12-17T23:02:38.585632093Z 75 PC: 11821 | Execute program
2018-12-17T23:02:38.601078534Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T23:02:38.605792137Z 76 PC: 12a4b | Terminate with return code (Return code = '36')
2018-12-17T23:02:38.61015164Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:02:38.611647859Z 72 PC: 12174 | Allocate memory
2018-12-17T23:02:38.613617599Z 72 PC: 1218d | Allocate memory
2018-12-17T23:02:38.61590609Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:02:38.617147196Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:02:38.618562044Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:02:38.621148644Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.622884424Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.624426198Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.626818634Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.627871768Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.629444421Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.632817091Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.634116226Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.635553967Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.637936464Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.639470675Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.640763184Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.642938527Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.645375886Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.646810718Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.650073932Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.651301701Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.653232563Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.656375806Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.657702718Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.660213609Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.665272618Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.666819068Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.668506231Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.672674008Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.674381953Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.677212115Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.680382228Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.681836087Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.683274646Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.685291862Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.687169697Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.688586101Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.691561772Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.692803284Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.694149326Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.695940621Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.697292529Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.698543715Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.700303964Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.702242486Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.703395559Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.705135945Z 98 PC: 9f6cc | Get current PSP
2018-12-17T23:02:38.70712365Z 82 PC: 9f6e0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:02:38.70851765Z 62 PC: 122ab | Close file
2018-12-17T23:02:38.711815582Z 99 PC: 99e27 | Get DBCS lead byte table pointer
2018-12-17T23:02:38.713713832Z 56 PC: 94649 | Get or set country info
2018-12-17T23:02:38.715660676Z 64 PC: 9a098 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:02:38.720720419Z 25 PC: 946b2 | Get default drive
2018-12-17T23:02:38.725555164Z 71 PC: 9692d | Get current directory
2018-12-17T23:02:38.731223874Z 64 PC: 9a098 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:02:38.736930257Z 2 PC: 96902 | Character output (Char = '3e')
2018-12-17T23:02:38.741924491Z 93 PC: 94770 | File sharing functions
2018-12-17T23:02:38.744374353Z 93 PC: 94777 | File sharing functions
2018-12-17T23:02:38.747284863Z 10 PC: 94789 | Buffered keyboard input